Admidio是Admidio团队的一套开源的成员管理系统。该系统支持成员列表、事件管理、留言簿、相册和下载等功能。 Admidio 5.0.9之前版本存在跨站脚本漏洞,该漏洞源于system/msg_window.php端点存在反射型跨站脚本,用户输入经过htmlspecialchars处理后未编码方括号,后续调用Language::prepareTextPlaceholders将其转换为HTML尖括号,可能导致任意JavaScript执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-41669 | 8.2 HIGH | Admidio: SAML Signature Validation Result Ignored — Forged AuthnRequests and LogoutRequest |
| CVE-2026-41670 | 8.2 HIGH | Admidio: SAML Response Sent to Unvalidated Assertion Consumer Service URL from AuthnReques |
| CVE-2026-41660 | 7.1 HIGH | Admidio: Inverted 2FA Reset Authorization Check Lets Group Leaders Strip Admin TOTP |
| CVE-2026-41671 | 6.8 MEDIUM | Admidio: OIDC Token Introspection Endpoint Returns Active for All Tokens Without Validatio |
| CVE-2026-42194 | 6.8 MEDIUM | Incomplete fix for CVE-2026-32812: SSRF in admidio |
| CVE-2026-41658 | 6.5 MEDIUM | Admidio: Missing Authorization on Inventory Module Destructive Endpoints Allows Any Authen |
| CVE-2026-41655 | 6.5 MEDIUM | Admidio: Path Traversal in ECard Preview Allows Reading Arbitrary Server Files Including D |
| CVE-2026-41662 | 5.2 MEDIUM | Admidio: Missing Minimum Administrator Check in Role Membership Removal |
| CVE-2026-41657 | 4.9 MEDIUM | Admidio: Cross-Organization Member Data Exposure via Permission Check Mismatch in contacts |
| CVE-2026-41656 | 4.5 MEDIUM | Admidio: Path Traversal via Unvalidated `name` Parameter in Document Add Mode Enables Arbi |
| CVE-2026-41663 | 3.5 LOW | Admidio: CSRF on Admin Preferences Triggers Unauthorized Backup, .htaccess Write, and Emai |
| CVE-2026-41659 | 2.7 LOW | Admidio: Hidden Profile Field Values Leaked via Blind Search Oracle in Member Assignment |
No comments yet